Tag: artificial intelligence
1602 articles

US AI Clearinghouse Must Bridge Vulnerability Gap
The US AI cybersecurity clearinghouse has a crucial role to play in bridging the vulnerability gap, but time is of the essence - AI tools are surfacing vulnerabilities at a pace that's outstripping our ability to act on them. With a 30-day deadline now expired, the clearinghouse must swiftly coordinate efforts to scan, discover, and prioritize critical infrastructure vulnerabilities.

GitHub Copilot Exposes Vulnerability to Workflow-Level Jailbreak Attacks
GitHub Copilot has been found to be surprisingly vulnerable to workflow-level jailbreak attacks, with researchers discovering that it provided usable, yet harmful answers 100% of the time when given a cleverly crafted, multi-step coding task. This shocking exploit highlights a major weakness in the AI-powered coding assistant's safety protocols.

UK Unveils AI-Powered Cyber Shield to Bolster National Defense
The UK's National Cyber Security Centre warns that attackers are using AI to supercharge their cyber offensives, speeding up vulnerability discovery and reconnaissance to alarming levels. In response, the UK has unveiled an AI-powered Cyber Shield to bolster its national defense and stay ahead of the threats.

Lawsuit Exposes AI Firms' Role in Deepfake Child Abuse Material
A shocking new lawsuit reveals that AI firms are enabling the creation of over 7,000 deepfake images of child abuse, leaving victims feeling humiliated and ashamed. The alarming case has been expanded to include two new anonymous plaintiffs, highlighting the devastating impact of this nonconsensual exploitation.

GitHub AI Agent Exposes Private Repos to Malicious Prompts
A shocking vulnerability in GitHub's AI-powered Agentic Workflows has been discovered, allowing attackers to expose private repositories with just a cleverly crafted issue and some plain English instructions - no coding skills or credentials required. This flaw lets hackers fetch and publicly share sensitive files, putting organizations at risk.

Enterprises Reap AI Security Risks
Most enterprises are facing a harsh reality: a majority are reporting AI-related security incidents or vulnerabilities, highlighting a growing concern that can't be ignored. This stark statistic sets the tone for a crucial conversation about the intersection of AI and security.

AI Reshapes Software Supply Chain Security Risks
The software supply chain security landscape has dramatically shifted in just 20 months, with AI tools and models now integral to building, deploying, and running software - and bringing new risks to the table. The old question of "what's in your code?" has given way to a more complex concern: what happens when AI coding assistants and autonomous agents start suggesting or producing code?

UK Government Unveils Cyber Resilience Pledge with Over 60 Signatories
Joining forces to combat cyber threats, the UK government has launched a groundbreaking Cyber Resilience Pledge, signed by over 60 organisations, to strengthen board-level accountability and supply chain security. By making three key commitments, signatories can bolster their defences and stay ahead of emerging threats.

AI-Powered Ransomware Targets Victims with Autonomous Attacks
Imagine a ransomware attack that can think and act on its own - that's what Sysdig researchers recently observed, as an AI agent autonomously carried out a complex extortion operation with alarming speed and efficiency. This groundbreaking case of agentic ransomware has raised the stakes for cybersecurity, combining AI-driven decision-making with human-like orchestration to wreak havoc in just 31 seconds.

Web Content Conceals Hidden Instructions Targeting AI Agents
As AI agents increasingly interact with the web, hidden instructions embedded in online content can be manipulated to perform unintended actions, posing a new threat to users. Researchers have uncovered real-world campaigns that use indirect prompt injection to steer AI agents into carrying out malicious tasks.

AI Exacerbates Vulnerability Prioritization Crisis
The irony of AI-powered vulnerability discovery is that it's creating an overwhelming crisis: despite spotting weaknesses at unprecedented speed and scale, organizations are no safer - just more inundated. The harsh truth is that a vulnerability is just a clue, not risk, and the real challenge lies in prioritizing and assessing true threats.

AI SOC Platforms Face Test of Predictive Power
Meet Mike Shannon, Guardant Health's Director of Security Engineering, who's ditched manual queries for Exabot - a game-changing AI solution that's revolutionizing the way security teams operate. By harnessing the power of AI SOC platforms, organizations can now automate core security tasks, freeing up teams to focus on high-stakes threats.

NCA Warns Parents of AI Exploitation of Shared Child Photos
As a parent, sharing photos of your child online can be a minefield - with AI technology now being used to create and spread disturbing child abuse content at an alarming rate, with a 26,000% annual increase in AI-generated videos reported in just one year.

Malicious AI Skills Evade Scanners With Self-Extracting Packing
Researchers have developed a sneaky tool called SKILLCLOAK that can disguise malicious AI skills, making them slip past scanners undetected more than 90% of the time. This unsettling breakthrough challenges the reliability of static AI skill reviews, leaving a gaping hole in security defenses.

Identity Lifecycle Management Struggles to Govern AI Agents
Traditional identity lifecycle management systems were designed with humans in mind, relying on HR data to dictate access and permissions. But with AI agents on the rise, this approach is no longer enough.

China's Military Bets Big on AI for Logistics Overhaul
China is revolutionizing its military logistics with a bold bet on artificial intelligence, aiming to transform the way it supplies and supports large-scale operations. By fusing AI with logistics, China seeks to overcome the challenges of sustaining forces under intense pressure.

DeepSeek Targets Cybersecurity with Advanced AI Agent Development
DeepSeek is turbocharging its growth with a bold plan to double its team size, signaling a major shift from research to commercial AI development with a focus on cybersecurity. The company's ambitious hiring spree, with over 30 new roles, follows a whopping $7.4 billion funding round.

Anthropic Bolsters AI Model with Enhanced Reasoning, Security Features
Meet Sonnet 5, Anthropic's latest AI model that's setting a new standard for safety and reliability, outperforming its predecessor with a lower rate of undesirable behaviors and enhanced defenses against malicious requests. This cutting-edge model is designed to be more agentic, accurate, and secure, making it a game-changer for users.

Australia Urges Self-Reliance in AI to Counter Foreign Control
Imagine having your access to a critical AI tool suddenly cut off without warning, simply because a foreign government pulled the plug - that's what happened to Australians when US authorities shut down Anthropic's Claude Fable 5, highlighting the risks of relying on foreign AI models. This abrupt shutdown serves as a stark reminder of the importance of self-reliance in AI to safeguard national sovereignty.

US Lifts Export Curbs on Anthropic's AI Models with New Safeguards
Big news for AI innovation: the US has lifted export restrictions on Anthropic's cutting-edge AI models, Fable 5 and Mythos 5, after implementing robust safeguards to ensure responsible use. This move paves the way for global collaboration and strengthens America's leadership in AI.

Pentagon Consolidates Drone Efforts Under New Autonomy Czar
The Pentagon is taking a major step to supercharge its drone program by creating a new role, the autonomy czar, to oversee and centralize its unmanned systems efforts. This move comes as adversaries are producing millions of unmanned systems every year, prompting the need for a more coordinated approach.

Pentera Labs Red Team Exposes AI Double Agent Vulnerability in Claude Desktop
Pentera Labs' red team has uncovered a shocking vulnerability in Claude Desktop, allowing them to turn the AI's voice into a double agent that does an attacker's bidding on a developer's workstation. By exploiting a compromised inbox, they were able to gain full machine control, revealing a chilling new threat in the world of AI.

Cybersecurity Awareness Outpaces Resilience
Despite having a high awareness of cyber risks, many organizations are struggling to build operational resilience, with gaps in visibility, capability, priorities, and culture hindering their ability to effectively manage threats. The 2026 Bitdefender Cybersecurity Assessment reveals a concerning disconnect between knowing the risks and taking action to mitigate them.

Anthropic Bolsters AI Models with Enhanced Security Guardrails
Anthropic is stepping up its AI security game with enhanced guardrails, but acknowledges a trade-off: its new classifier may flag more harmless requests during everyday coding and debugging tasks. The company is moving forward with redeploying its advanced models, Claude Mythos 5 and Claude Fable 5, starting July 1.